Логотип exploitDog
bind:CVE-2022-24984
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-24984

Количество 2

Количество 2

nvd логотип

CVE-2022-24984

почти 4 года назад

Forms generated by JQueryForm.com before 2022-02-05 (if file-upload capability is enabled) allow remote unauthenticated attackers to upload executable files and achieve remote code execution. This occurs because file-extension checks occur on the client side, and because not all executable content (e.g., .phtml or .php.bak) is blocked.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-hxmx-23pw-wf2g

почти 4 года назад

Forms generated by JQueryForm.com before 2022-02-05 (if file-upload capability is enabled) allow remote unauthenticated attackers to upload executable files and achieve remote code execution. This occurs because file-extension checks occur on the client side, and because not all executable content (e.g., .phtml or .php.bak) is blocked.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-24984

Forms generated by JQueryForm.com before 2022-02-05 (if file-upload capability is enabled) allow remote unauthenticated attackers to upload executable files and achieve remote code execution. This occurs because file-extension checks occur on the client side, and because not all executable content (e.g., .phtml or .php.bak) is blocked.

CVSS3: 9.8
2%
Низкий
почти 4 года назад
github логотип
GHSA-hxmx-23pw-wf2g

Forms generated by JQueryForm.com before 2022-02-05 (if file-upload capability is enabled) allow remote unauthenticated attackers to upload executable files and achieve remote code execution. This occurs because file-extension checks occur on the client side, and because not all executable content (e.g., .phtml or .php.bak) is blocked.

2%
Низкий
почти 4 года назад

Уязвимостей на страницу